Vyntic Guard – Security & Malware Scanner
Vyntic Guard helps secure WordPress against brute-force login attacks, suspicious file changes, weak security configuration, and unwanted access attempts.
The free plugin combines a malware scanner, brute-force protection, login security controls, IP blocking, activity logging, WordPress hardening, security checks, and a custom login URL in one dashboard. It runs locally without requiring a Vyntic account or license key.
Malware Scanner
Review potential file-security issues before taking action.
- Malware scanner with administrator review
- WordPress core integrity checks using official WordPress checksums when available
- Encrypted quarantine for selected files
- Recovery-copy downloads before destructive actions
- Permanent delete controls for administrator-reviewed findings
- No automatic deletion of scan findings
Brute Force & Login Protection
Reduce repeated login attacks and control access to your WordPress login route.
- Brute-force protection with progressive lockouts
- Blocked IP manager with manual unblock controls
- Custom public login URL
- WordPress-generated login links updated for the custom route
- No renaming of WordPress core login files
Activity Log, IP Blocking & Hardening
Monitor important activity and strengthen common WordPress security settings.
- Activity logging with configurable retention
- Security dashboard with configuration score
- Security configuration check
- WordPress hardening controls
- Fingerprint-reduction controls
- Central blocked-IP management
Local-First Privacy
Vyntic Guard Free does not require a Vyntic account. Activity logs and blocked-IP data are stored in the site’s WordPress database and are not sent to Vyntic servers.
Vyntic Guard Pro
Vyntic Guard Pro is an optional add-on distributed separately. It adds:
- Two-factor authentication (2FA)
- Authenticator App (TOTP) with local QR enrollment
- Email, SMS, and WhatsApp OTP
- Passkey verification
- CAPTCHA and Google reCAPTCHA integration
- SMTP and Twilio provider configuration
- Stealth Engine for public WordPress path virtualization
- Drag-and-drop Login and 2FA Verification Page Builder
Learn more about Vyntic Guard Pro at https://vynatics.corsysltd.com/vyntic-guard
External Services
WordPress Core Checksum API
The malware scanner can request official WordPress core checksums from api.wordpress.org when performing core-file integrity checks. The request contains the installed WordPress version and locale required by the WordPress checksum API. No Vyntic account is required for this request.
Site Self-Check
The Security Check can request the site’s own public home page to inspect visible WordPress fingerprints. This request targets the site itself.
Privacy
Vyntic Guard Free does not require a Vyntic account and does not send site security logs to Vyntic servers. Activity logs and blocked-IP data are stored in the site’s WordPress database.
The malware scanner can contact the official WordPress checksum API for core-file integrity checks as described in the External Services section.
